chore(deps): update ferrlabs/.github digest to 6b7ce7f - #243
Conversation
| jobs: | ||
| release: | ||
| uses: FerrLabs/.github/.github/workflows/reusable-ferrflow-release.yml@1a21d234ca6b171eaccf47d029520724e15e406c # main | ||
| uses: FerrLabs/.github/.github/workflows/reusable-ferrflow-release.yml@6b7ce7f3ca369d00559df3808104880ae4c57692 # main |
| scan: | ||
| name: Secrets + CVE | ||
| uses: FerrLabs/.github/.github/workflows/reusable-security-scan.yml@1a21d234ca6b171eaccf47d029520724e15e406c # main | ||
| uses: FerrLabs/.github/.github/workflows/reusable-security-scan.yml@6b7ce7f3ca369d00559df3808104880ae4c57692 # main |
There was a problem hiding this comment.
Digest bump only, three pinned refs updated consistently, full SHAs kept with the # main comment.
Checked what the range actually contains: 1a21d234..6b7ce7f3 is a single upstream commit, FerrLabs/.github#383, which changes reusable-ci-node.yml, reusable-ci-astro.yml, default.json and the workflow templates (the @ferrlabs npm registry default moves to npmjs.org). None of the three reusables this repo consumes (reusable-pr-title.yml, reusable-ferrflow-release.yml, reusable-security-scan.yml) changed, so behaviour here is unaffected. The .npmrc caveat in that commit's README does not apply: this repo has no Node package, the generator is Rust.
Nit: the two zizmor secrets: inherit alerts the code-scanning bot posted are on pre-existing lines that this diff does not modify, only re-flagged because the file was touched. Nothing for this PR to fix.
This PR contains the following updates:
1a21d23→6b7ce7fConfiguration
📅 Schedule: (UTC)
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR has been generated by Mend Renovate CLI.